Cyber Threat Specialist

Posted 13 hours 7 minutes ago by Certain Advantage

Permanent
Full Time
Other
Hertfordshire, Stevenage, United Kingdom, SG1 1
Job Description

Are you a Cyber Security professional with experience in supporting threat operations within organisations deemed to be part of the UK critical national infrastructure?

Certain Advantage are recruiting on behalf of a critically important client for a Cyber Threat Operations Specialist on an initial 12 month contract.

SC clearance will be required before starting but applications are welcome from candidates who don't hold it as long as you are eligible and willing to wait.

DV clearance will be required once on assignment.

Location: Stevange - Onsite 5 days per week covering a shift pattern of 07:00-15:00 or 09:00-18:00

This is a fantastic opportunity to drive a proactive ethos in an ever-changing cyber security environment providing robust threat hunting, detection Engineering and analysis within a high performing team environment.

Responsibilities:

Support for the operational functions of the UK SOC. To work with other UK SOC members, including the UK InfoSec Team and other Domains (Customer Support and Infrastructure / Information Systems).

It will cover Threat hunting, analysis, monitoring, Optimising, reporting, alerting and investigation activity utilising a wide variety of security platforms including AI/ML and behavioural analytics, SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the UK Network Perimeter working with the best standard technologies.

As the Cyber Threat Operations specialist you'll conducts a range of analysis and assist the incident response team with investigations that need to be escalated to an embedded member of staff.

Skillset/experience sought:

  • A career background in Cyber Security. Security awareness and experience in all areas of IT, primarily Network Security, Infrastructure and the secondary area being Operating Systems & Applications.
  • Demonstrable experience with YARA and Sigma rulesets
  • Knowledge of IT Security standard methodologies.
  • Demonstrable understanding of the OSI Reference Model and the network communication protocols, including but not limited to DNS, HTTP/S, SSL, SMTP, FTP/S, LDAP/S.
  • Demonstrable experience with Security Information Event Monitoring Tools and/or Network Packet Capture tools.
  • Hands on experience with IDS/IPS technologies and threat hunting activities.
  • Strong analytical experience and mind-set.
  • Experience within Defensive Cyber-attack methodologies and frameworks.
  • Understanding of Malware capabilities, attack vectors, propagation and impact.
  • Good communication skills liaising with the business and suppliers.